CVE-2026-22535
Awaiting Analysis Awaiting Analysis - Queue
BaseFortify

Publication date: 2026-01-07

Last updated on: 2026-01-08

Assigner: S21sec

Description
An attacker with the ability to interact through the network and with access credentials, could, thanks to the unsecured (unencrypted) MQTT communications protocol, write on the server topics of the board that controls the MQTT communications
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2026-01-07
Last Modified
2026-01-08
Generated
2026-05-07
AI Q&A
2026-01-07
EPSS Evaluated
2026-05-05
NVD
EUVD
Affected Vendors & Products
Currently, no data is known.
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-1366
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?

This vulnerability involves an attacker who can interact through the network and has access credentials. Due to the MQTT communications protocol being unsecured and unencrypted, the attacker can write to server topics on the board that controls MQTT communications.


How can this vulnerability impact me? :

The vulnerability allows an attacker to write to MQTT server topics, potentially leading to unauthorized control or manipulation of the MQTT communications. This could result in compromised system integrity, unauthorized actions, or disruption of services relying on MQTT communications.


Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70
EPSS Chart